International Journal of Electrical and Computer Engineering (IJECE) 
Vol. 12, No. 1, February 2022, pp. 1040~1047 
ISSN: 2088-8708, DOI: 10.1159 I/ijece.v12i1.pp1040-1047 O 1040 


Asymmetric image encryption scheme based on Massey Omura 


scheme 


Najlae Falah Hameed Al Saffar, Inaam R. Al-Saiq, Rewayda Razaq Mohsin Abo Alsabeh 


Department of Mathematics, Faculty of Computer Science and Mathematic, University of Kufa, Najaf, Iraq 


Article Info 


ABSTRACT 


Article history: 


Received Feb 11, 2021 
Revised Aug 4, 2021 
Accepted Aug 21, 2021 


Asymmetric image encryption schemes have shown high resistance against 
modem cryptanalysis. Massey Omura scheme is one of the popular 
asymmetric key cryptosystems based on the hard mathematical problem 
which is discrete logarithm problem. This system is more secure and 
efficient since there is no exchange of keys during the protocols of 


encryption and decryption. Thus, this work tried to use this fact to propose a 


secure asymmetric image encryption scheme. In this scheme the sender and 
receiver agree on public parameters, then the scheme begin deal with image 
using Massey Omura scheme to encrypt it by the sender and then decrypted 
it by the receiver. The proposed scheme tested using peak signal to noise 
ratio, and unified average changing intensity to prove that it is fast and has 
high security. 
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1. INTRODUCTION 

Image encryption is the process of converting original image (plain image) to another form of image 
(cipher image), so that it will be readable to the authorized users only. Image encryption scheme determines 
how simple or complex the transformation process of the image, it provides confidentiality, integrity and 
authentication of the images transferred between the users. Cryptosystem technique is one of the common 
techniques used in securing data or messages by encoding the original message into other characters that can 
hide the pattern and meaning of the original message. There are two types of cryptosystem technique; 
symmetric and asymmetric key cryptosystem, the first one (also known as privet key cryptosystem) used the 
same key for the encryption and decryption process, these keys should be kept secretly between the two 
parties. The second type (also known as public key cryptosystem) there are two different keys, one of them 
used in the encryption process, the other used in the decryption process. Massey Omura scheme is one of the 
asymmetric key cryptosystems, where the key used in the encryption process is different with the key used in 
the decryption process. The Massey Omura scheme is an asymmetric key cryptosystem that will be the focus 
of this paper. It was introduced in 1983 by Massey and Omura [1], it is an encryption scheme based on three 
stages encryption protocol from the improvement of Shamir three pass protocol [2], [3] where the key used in 
the encryption or decryption process is generated by the sender and receiver based on a mutually agreed 
value. The hardness of solving the discrete logarithm problem from the adversaries is one of the Massey 
Omura scheme advantages. In other word, the security of Massey Omura scheme based on solving the 
discrete logarithm problem. 

A little bit of researchers tried to develop or use Massey Omura scheme to be more efficient or to 
construct new system respectively. For both cases the purpose of their work is to improve its security. 
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Koblitz [4] in 1987 presented a discussion for elliptic curve analog of the Massey Omura scheme, the 
security of this system based on solving the elliptic curve discrete logarithm problem which is harder than 
classical discrete logarithm problem. Winton [5] in 2007 enhanced Massey Omura scheme by introducing 
two versions. The first version came with replacing the prime modulus with a composite number to be with a 
same level of security of Rivest-Shamir—Adleman (RSA) scheme. The second version added a digital 
signature to the first version, which provided an additional aspect of security. In 2012, Winton [6] introduce a 
three pass system which is hybrid system between symmetric and asymmetric key cryptosystem more secure 
than both of symmetric and asymmetric. This system based on the two versions that mentioned in [5]. In 
2018 Massey Omura scheme was involved in chat application [7], this implementation was very effective to 
secure the data this due to the encryption applied layered. Another work involved Massey Omura scheme in 
2018, Haley [8] replaced cyclic group in a finite field that use in the original Massey Omura scheme with a 
non abelian group, the purpose of this work is to make the scheme harder to break. In 2019 Massey Omura 
scheme was a tool to analysis the security of three pass protocols, where the value of the mean squared error 
(MSE) and the peak signal to noise ratio (PSNR) was zero and infinite respectively, which means, the 
scheme can maintain data integrity [9]. The latest work where the Massey Omura scheme was involved was 
in 2021, Massey Omura protocol was a tool together with Vernam cipher [10] to do implementations for 
three methods for number generation [11]. Actually, no work for involving Massey Omura scheme with 
image encryption. 

This work describes how to use the Massey Omura scheme to encrypt image where the three pass 
protocols in this scheme can maintain the security of keys used both in the process of encryption and 
decryption images. Implementation of this proposed scheme is expected to minimize the misuse of images 
that have been distributed by parties who are not given access. The new scheme will be implemented and 
tested on the gray images. The efficiency and performance of the new scheme will be assessed by using some 
security measures like MSE, PSNR, and unified average changing intensity (UACI). Matrix laboratory 
(MATLAB) R2014a (8.3.0.532) 32-bit software on a workstation Intel® Core™ i3 with CPU 2.13 GHz and 
RAM 4 GB with Microsoft Windows 7 as an operating system will be used for encryption and decryption 
processes. 

This paper is coordinated as follows: Image encryption is presented in section 2. Section 3 describes 
the Massey Omura scheme. Section 4 explains the proposed image encryption scheme. An implementation 
example of the proposed scheme will introduce in section 5. Section 6 will contain the security analysis for 
some measures MSE, PSNR, and UACI, the conclusion and future works of the proposed scheme are 
displayed in section 6. 


2. IMAGE ENCRYPTION 

A gray image can be expressed as a matrix of dimension n x m, all inputs values are in [0,255]. 
Nowadays, images are transferred everyday across the network. Some of these images are confidential and 
they require to be transferred securely. Recently, many image encryption techniques have been proposed to 
verify interactive media data before transmission over insecure channels. We will list the most recent ones; in 
2018 and 2020, [12] and [13] respectively have been are involved Hill [14] and Elliptic Curve cryptosystem 
[4], [15] in technique to encrypt and decrypt, they have been proved that it was more hard for the interloper 
attackers Wang and Tu [16] in 2020, involved concepts of chaotic system [17] to do encryption for medical 
image, they protected them in the process of transmission and utilization. Concepts of chaotic system was 
also involved in image encryption in 2020 [18], image encryption was applied with numbers were generated 
in LabVIEW software [19], Depending on the metrics used, the proposed method was acceptable. Yanhong 
Wei [20] in the same year used concepts of chaotic system to propose a scheme for image encryption, it was 
simple, easy to program and implement. Private key and segment map table was involved in 2020 [21] to 
encrypt and decrypt a color image, it was simple and highly secure method according to the time of 
execution. Matrix semi tensor product with a compound secret key was a base for an algorithm of a chaotic 
image encryption in 2020, they proved that the proposed algorithm is secure and effective and can use for a 
color image [22]. Image encryption has been implementing for fractional-order of dimension three in 2020, 
where the proposed algorithm was effective according to the security analysis [23]. Finally, elliptic curves 
were a tool to construct an asymmetric image encryption scheme in 2021 in two different works [24], [25], 
they were fast and secure in term of generating points on an elliptic curve. In the same year (2021), an 
approach of image encryption based the time delay of chaotic system has been proposed [26], where they 
proposed a type of time delay chaotic system to achieve the purpose of the image encryption. A high-speed 
image encryption has been proposed as an implementation also in 2021, where chaotic map has been 
involved, they propose a new fractional with one dimension chaotic map in a large chaotic space [27]. In this 
work, asymmetric image encryption scheme will propose based Massey Omura scheme. 
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3. MASSEY OMURA SCHEME 

Massey Omura scheme is an exponential based cryptosystem by Messey and Omura [1] in 1983. It 
was based on three pass protocols. The advantage of this cryptosystem is not it is necessary to distribute and 
exchange keys between the two communicating parties, this mean Massey Omura scheme allows two users 
(sender and receiver) which do not share their private keys to exchange their information over insecure 
channel. Massey Omura scheme in brief is as follows: If the sender (Part A) wants to send a message M to the 
receiver (Part B) using Massey Omura scheme, they must agree with a trusted party on prime p and a prime 
field Fp. Part A encrypts M with his key (say eg E (0,p — 1), with gcd(e,, p — 1) = 1) and sends the result 
(M®A) to Part B; B encrypts what he has received with his key (say eg € (0,p — 1), with gcd(eg, p — 1) = 
1) and sends the new result (M°4°8) back A. Now, A decrypts B’s response by computing M®a°sda = M®8B 
where d4 = dx! mod (p — 1) and sends the result (M°) to B. Finally, B will get the message by computing 
Mds = M where dg = dg! mod (p — 1). The Massey Omura scheme is summarized in Figure 1. 


Public Parameter Creation] 


A trusted party chooses and publishes a prime p and a prime field F, 


Private Computation 
1. Choose a secret integer e; E (0,p — 1), 1. Choose a secret integer e, € (0,p — 1), 
2. Compute d, = e;1 mod (p— 1). 2. Compute d; = e; mod (p — 1). 
Public Exchange of Values| 


Part A computes M*4 and sends it to Part B 

Part B computes M*4*? and sends it to Part A 

Part A computes M*4*8¢4 = M®8 and sends it to Part B 
Part B computes M*8¢2 = M 


Figure 1. Massey Omura scheme 


4. PROPOSED IMAGE ENCRYPTION SCHEME 

A new proposed scheme for image encryption based on Massey Omura scheme has been introduced 
in this section. This scheme increases the security and makes the system more efficient than the original 
Massey Omura scheme. This scheme can be in brief as follows: if the sender (Part A) wants to send an image 
plainimage to the receiver (Part B) using the proposed scheme, they must agree with a trusted party on prime 
p and a prime field Fp. When we trying to deal with the plainjnage we have to convert this image to 
matrix-in this work we will consider gray image-the maximum value of the generating matrix will be 255. 
So, as not to lose the features of the original image, the prime p have to be more than 255. So, as Massey 
Omura scheme as shown in Figure 1 choosing the prime p is followed by choosing e4, eg and calculation d4, 
dg by Part A and Part B respectively. The proposed scheme will illustrate in the following steps: 


Step 1: Part A selects the plainjmage, then represent is as a matrix of pixels (denoted by M). 

Step2 : Then he detriments the size of new matrix as Myym- 

Step3 : Part A computes M“ and sends it as an encrypted image for the first round (denoted by 
encrypted limage ) to Part B. 

Step4 : Part B computes M®4®8 and sends it as an encrypted image for the second round (denoted by 


encrypted Ilimage ) to Part A. 

Step5 : Part A computes M°4°844 = M®B and sends it as an encrypted image for the third round (denoted 
by encrypted IIlimage ) to Part B. 

Step6 : Part B computes M°8¢8 = M which is the corresponding matrix of the decryptedimage- 


5. IMPLEMENTATION EXAMPLE 

Assume that Part A wants to send an image (mandrill.png) which is a plainjmage with size161 x 
164 to Part B using the proposed scheme, they must agree with a trusted party on prime p = 257 > 255, and 
a prime field F257. Both of two users have to chooses and compute their keys (eg = 223,eg = 141 and 
da = 31, dg = 69) respectively as Figure 1. Now the processing of the example will be as follows: 

Part A represents the plainjmage image as a matrix M as: 
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83 111 103 76 
95 131 109 94 ... 
M=|50 75 58 85 
50 75 58 85 
“161x164 
So, he will do the first round of the proposed scheme by computing a matrix M°4 as: 


83773 mod257=233 111°??mod257=213 1037?3mod257=237 76?73mod257=230 --- 
9573 mod257=211 131???mod257=77 109??3mod257=56 94??? mod257=93 
M°4 =| 50?3mod257=195 7577?mod257=251 5877>mod257=239 8577>mod257=161 
50?23mod257=195 75?73mod257=251 58?73mod257=239 857?>mod257=161 


"161x164 


Then represents it as encrypted limage and sends it to Part B. Part B computes M®°4°8 after convert the 
received image to matrix as: 


233'41mod257=181 213'4!mod257=88 237'4!mod257=147 230'4!mod257=160 --- 
211'4!mod257=146 77'4!mod257=33 56!4!'mod257=192 93!4!'mod257=194 
M*A% =| 195!4!mod257=135 251'4!mod257=19 239!4!'mod257=196 161'*!mod257=47 
195'4!mod257=135 251'4!mod257=19 239!4!mod257=196 161'*!mod257=47 


"161x164 


and sends it as an encrypted image for the second round (denoted by encrypted Ilimage ) to Part A. Part A 
computes M®a®sda after convert the encrypted Tlimage to matrix as: 


181°! mod257=82 88°! mod257=73 147°!mod257=82 160°!mod257=212 --- 
146! mod257=44 33° mod257=37 1923! mod257=86 194°!mod257=151 --- 
M‘4B44 _ | 1353 mod257=215 193!mod257=186 196°!mod257=173 473!mod257=108 
135°! mod257=215 19°!mod257=186 196°!mod257=173 47°!mod257=108 


"161x164 


and sends it as an encrypted image for the third round (denoted by encrypted IIlimage ) to Part B. Finally, 
Part B will be able to see the plainjmage, by converting the encrypted IIlimage to matrix and computing 


eĘaegdadg 
M as: 


82° mod257=83 73°? mod257=111 82° mod257=103 212°? mod257=76 
44° mod257=95 37°? mod257=131 86°? mod257=109 1516’ mod257=94 
M‘4B4A L | 21569 mod257=50 186° mod257=75 173° mod257=58 108°? mod257=85 
215°? mod257=50 186°? mod257=75 173°? mod257=58 108°? mod257=85 


"161x164 


It is decryptedjmage- Figure 2 will summarize the output of execution of this example. Different gray images 
with 256 X 256 as their sizes are used to implement the proposed scheme. Table 1 summarizes their 
execution. 


plainimage encrypted limage encrypted Ilimage | encrypted image decryptedimage 


Figure 2. Implementation the mandrill.png image for the proposed scheme 
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Table 1. Execution the proposed scheme using different gray images 
plainimage encrypted llimage encrypted Ilimage decryptedimage 
core RRS F "a 


Image Name 


encrypted limage 


Lena 


Peppers 


Cameraman 


6. SECURITY ANALYSIS 

Security performance of the proposed scheme is analyzed by calculating MSE, PSNR, and UACI, 
these measures are utilized to evaluate gray image that has been encrypted and compare it with the original 
image. The results will be an excellent indicator to measure the efficiency of the proposed scheme and 
evaluate the ability of the proposed scheme to resist statistical attacks. Mean square error and peak signal to 
noise ratio: MSE and peak signal-to-noise ratio (PSNR) [28] are tools to check the data integrity. So MSE 
and PSNR will be used to evaluate the quality of plain image with respect to the encrypted images. The 


equation of the PSNR is as: PSNR = 10log1 —— where MSE = — YE Shad, D- YG, j), XG) 


and Y(i,j) are the pixel value of encrypted image and original image respectively both have size m x n. 
Obviously, that calculating the MSE will affect the value of PSNR, if PSNR is decreasing means that the 
MSE is increasing this fact in term of the processing of image encryption, in other words the high value of 
MSE and low value of PSNR indicates that the two images are totally different, and this leads to the 
efficiency of the proposed scheme. 

In this work we get 12002.3 and 7.36791 as an average value of the values of the MSE and PSNR 
respectively of the encrypted limage, encrypted Ilimage and encrypted IIlimage with respect to the 
plainjmage Which is Lena, it is so hard for an attacker to recover the plain image. Unified average changing 
intensity (UACI): It is one of differential analyses used to evaluate the strength of image encryption, where it 
is estimated the contrast between the encrypted image and plain image [13]. The highest value of the UACI 
(approximately 33.46%) implies that the proposed procedure is safe against differential assaults. The 


equation of the UACI is as: UACI = -5z OE <p). 100%, X(i,j) and Y(i,j) are the pixel value 
of plain image and decrypted image respectively. In this work we get 33.47067 as an average value of the 
values of the UACI of the encrypted limage» encrypted limage and encrypted IIlimage with respect to the 
plainimage Which is Lena, it is so hard for an attacker to recover the plain image. 

According to Table 2 the MSE, PSNR and UACI as an average value of the values of the MSE, 
PSNR, and UACTI of the encrypted limage, encrypted Ilimage and encrypted IIlimage with respect to the 
plainimage that have been tested. The values of PSNR were very low while the values of MSE were very high 
and this means that the proposed scheme is efficient. The values of UACI for tested images were much 
closed to the expected value 33.46 and this demonstrates the strength of the proposed scheme against the 
attackers. Indeed, these results pointed that the encrypted images hardly be perceived, and this leads to an 
efficient encryption technique. A comparison of the proposed scheme and some other recently algorithms 
over security measures for different gray image with size 256 x 256 are shown in Table 3. It is clear that the 
MSE in the proposed scheme is higher than [12], [13], [23] schemes. PSNR and UACI values in the proposed 
scheme are also much better than other existing work. As a result, it can be concluding that the proposed 
scheme is more efficient than the other schemes. 

Finally, Table 4 summarized the time consumed in encryption and decryption processes over the 
four gray images-that considered in this work. Time of execution all steps of the proposed scheme considered 
as measuring the efficiency of this scheme, Table 2 shows that the proposed scheme needs very the low time 
for execution. Again, this work is time efficient. 
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Table 2. The performance of the proposed scheme using various security measures for different gray image 


with size 256 X 256 


plainimage Measures encrypted limage encrypted image encrypted Iimage Average decryptedimage 
Name 
Lena MSE 10167.8 12876.7 12962.4 12002.3 0 
PSNR 8.06704 7.03275 7.00394 7.36791 Inf 
UACI 32.5566 33.9044 33.951 33.47067 0 
Peppers MSE 10942.3 11997.9 13125.5 12021.9 0 
PSNR 7.73971 7.33975 6.94964 7.343033 Inf 
UACI 32.5755 33.7086 33.9099 33.398 0 
Cameraman MSE 12947.9 13296.3 13562.7 13268.97 0 
PSNR 7.00881 6.89349 6.80734 6.903213 Inf 
UACI 32.9009 33.9278 34.5693 33.79933 0 
Mandrill MSE 7490.3 7089.2 8865.9 7815.133 0 
PSNR 9.38581 9.62483 8.65357 9.221403 Inf 
UACI 31.7739 32.6801 32.9567 32.47023 0 


Table 3. Comparison of the proposed scheme with other methods over security measures for different gray 
image with size 256 X 256 


Schemes plainimage Name MSE PSNR UACI 
This Study Lena 12002.3 7.36791 33.47067 
Peppers 12021.9 7.343033 33.398 
Cameraman 13268.97 6.903213 33.79933 
Mandrill 7815.133 9.221403 32.47023 
Dawahdeh [12] Lena 8985.8 8.5952 30.3842 
Peppers - - - 
Cameraman 12974 6.9999 35.5263 
Mandrill 6934.2 9.7208 27.3588 
Rajvir [13] Lena 11015.636 7.7107 33.5844 
Peppers (Red Stream) 11720.228 7.4414 34.6475 
Cameraman - — - 
Mandrill 6949.448 9.7113 27.3642 
Obaid [23] Lena 7640.4 9.2996 28.1854 
Peppers - - - 
Cameraman 8167.8 9.0097 26.9897 
Mandrill 6806.6 9.8015 27.0906 


Table 4. Encryption and decryption time for the proposed scheme for different gray image with 


size 256x256 
plainimage Name _ Encryption/ and Decryption time in seconds 
Lena 2.746180 
Peppers 2.277766 
Cameraman 2.262432 
Mandrill 2.319871 


7. CONCLUSION AND FUTURE WORKS 

Recently the information security considered as the most important issues in the world. Massey 
Omura scheme considered as an asymmetric key cryptosystem based on the difficulty of solving the discrete 
logarithmic problem, where it is considered as one of the advantages of using the Massey Omura scheme. 
Asymmetric key cryptosystem has been proposed in this paper using the standard Massey Omura scheme to 
improve and raise the security of the original Massey Omura scheme for image encryption. A good result 
displayed at Table 2 for four gray images with size 256 x 256, and this supports the efficiency of the 
proposed scheme. Table 3 indicates that the proposed scheme on the same four gray images gives good 
results for MSE, PSNR, and UACTI better than other existing schemes. The MSE values in the proposed 
scheme were higher than the other existing schemes. PSNR values were lower than the others which is mean 
that it is better in the proposed scheme than the referred schemes. Also, UACI values were nearest to 33.46 
which is the expected value. Table 4 indicates the little execution time in the encryption and decryption 
processes, and this also indicates that the proposed scheme need not a long time in its computations. This 
work offered here can be subject to future studies, colored images can be used to a modification of the 
proposed scheme. Due to modest of it structure and quicker of its calculations, this work it can be a new line 
to implement the proposed scheme in wireless applications. 
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